Логотип exploitDog
bind:"CVE-2021-20095" OR bind:"CVE-2021-42771"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2021-20095" OR bind:"CVE-2021-42771"

Количество 22

Количество 22

rocky логотип

RLSA-2021:4201

больше 3 лет назад

Moderate: babel security and bug fix update

EPSS: Низкий
oracle-oval логотип

ELSA-2021-4201

больше 3 лет назад

ELSA-2021-4201: babel security and bug fix update (MODERATE)

EPSS: Низкий
rocky логотип

RLSA-2021:4151

больше 3 лет назад

Moderate: python27:2.7 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2021-4151

больше 3 лет назад

ELSA-2021-4151: python27:2.7 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2021-4162

больше 3 лет назад

ELSA-2021-4162: python38:3.8 and python38-devel:3.8 security update (MODERATE)

EPSS: Низкий
rocky логотип

RLSA-2021:4162

больше 3 лет назад

Moderate: python38:3.8 and python38-devel:3.8 security update

EPSS: Низкий
redhat логотип

CVE-2021-20095

около 4 лет назад

A flaw was found in python-babel. A path traversal vulnerability was found in how locale data files are checked and loaded within python-babel, allowing a local attacker to trick an application that uses python-babel to load a file outside of the intended locale directory. The highest threat from this vulnerability is to data confidentiality and integrity as well as service availability.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2021-20095

около 4 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

EPSS: Низкий
ubuntu логотип

CVE-2021-42771

больше 3 лет назад

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2021-42771

около 4 лет назад

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2021-42771

больше 3 лет назад

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-42771

больше 3 лет назад

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2021-42771

больше 3 лет назад

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-mqp6-6q54-7cxv

около 3 лет назад

Relative Path Traversal in Babel 2.9.0 allows an attacker to load arbitrary locale files on disk and execute arbitrary code.

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:3945-1

больше 3 лет назад

Security update for python-Babel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1553-1

больше 3 лет назад

Security update for python-Babel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3590-1

больше 2 лет назад

Security update for python-Babel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:4161-1

больше 3 лет назад

Security update for python-Babel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3945-1

больше 3 лет назад

Security update for python-Babel

EPSS: Низкий
redos логотип

ROS-20250212-10

4 месяца назад

Уязвимость python3-babel

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2021:4201

Moderate: babel security and bug fix update

больше 3 лет назад
oracle-oval логотип
ELSA-2021-4201

ELSA-2021-4201: babel security and bug fix update (MODERATE)

больше 3 лет назад
rocky логотип
RLSA-2021:4151

Moderate: python27:2.7 security update

больше 3 лет назад
oracle-oval логотип
ELSA-2021-4151

ELSA-2021-4151: python27:2.7 security update (MODERATE)

больше 3 лет назад
oracle-oval логотип
ELSA-2021-4162

ELSA-2021-4162: python38:3.8 and python38-devel:3.8 security update (MODERATE)

больше 3 лет назад
rocky логотип
RLSA-2021:4162

Moderate: python38:3.8 and python38-devel:3.8 security update

больше 3 лет назад
redhat логотип
CVE-2021-20095

A flaw was found in python-babel. A path traversal vulnerability was found in how locale data files are checked and loaded within python-babel, allowing a local attacker to trick an application that uses python-babel to load a file outside of the intended locale directory. The highest threat from this vulnerability is to data confidentiality and integrity as well as service availability.

CVSS3: 7.8
около 4 лет назад
nvd логотип
CVE-2021-20095

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

около 4 лет назад
ubuntu логотип
CVE-2021-42771

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2021-42771

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
nvd логотип
CVE-2021-42771

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
msrc логотип
CVSS3: 7.8
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2021-42771

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary ...

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-mqp6-6q54-7cxv

Relative Path Traversal in Babel 2.9.0 allows an attacker to load arbitrary locale files on disk and execute arbitrary code.

около 3 лет назад
suse-cvrf логотип
openSUSE-SU-2021:3945-1

Security update for python-Babel

0%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1553-1

Security update for python-Babel

0%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:3590-1

Security update for python-Babel

0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2021:4161-1

Security update for python-Babel

0%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3945-1

Security update for python-Babel

0%
Низкий
больше 3 лет назад
redos логотип
ROS-20250212-10

Уязвимость python3-babel

CVSS3: 7.8
0%
Низкий
4 месяца назад

Уязвимостей на страницу